Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
77 commits
Select commit Hold shift + click to select a range
0a54df6
Fixed #32 parentheses validation added
Anof-cyber Dec 10, 2025
9edfd9a
added local workflow release , WIP build optimization - add strip, li…
Anof-cyber Dec 10, 2025
c5495f4
Fixed mac signing #29
Anof-cyber Dec 14, 2025
5a1a89f
#29
Anof-cyber Dec 14, 2025
028323f
Merge branch 'dev' of https://github.com/InterceptSuite/ProxyBridge i…
Anof-cyber Dec 14, 2025
c6b09d6
fixed sign
Anof-cyber Dec 14, 2025
3fe011e
removed apple sign
Anof-cyber Dec 14, 2025
2696385
added action sign
Anof-cyber Dec 14, 2025
64257ed
fixed sign workflow
Anof-cyber Dec 14, 2025
920bd0e
fixed workflow
Anof-cyber Dec 14, 2025
3fb1f06
fixed workflow
Anof-cyber Dec 14, 2025
c675bf2
fixed workflow
Anof-cyber Dec 14, 2025
1206fc9
fixed workflow
Anof-cyber Dec 14, 2025
8da43e9
fixed action
Anof-cyber Dec 14, 2025
b5e401d
fixed build
Anof-cyber Dec 14, 2025
044f2eb
WIP #41
Anof-cyber Dec 23, 2025
2b88cda
Fixed #42
Anof-cyber Dec 23, 2025
5cdcd5e
optimized search /filter - search is speedup with less memory usage
Anof-cyber Dec 23, 2025
cc13709
added rule log in C
Anof-cyber Dec 23, 2025
6817fb7
Inital public commit for Linux Build
Anof-cyber Jan 3, 2026
d10af6c
Moved local to pub repo -> updated methods, temp CLI
Anof-cyber Jan 3, 2026
7c65a14
updated connection track for logs
Anof-cyber Jan 3, 2026
dd01fb9
WIP Linux - moved Windows code to Linux
Anof-cyber Jan 4, 2026
454a21d
WIP updated CLI - added Windows CLI to Linux
Anof-cyber Jan 4, 2026
3938b4e
updated logs, remove temp debug, reoved proxy logs from connetions
Anof-cyber Jan 4, 2026
906fa76
WIP deploy
Anof-cyber Jan 4, 2026
b2a47ac
copied proxy rules from Windows to Linux
Anof-cyber Jan 4, 2026
0ffc1b4
revered rules logic
Anof-cyber Jan 4, 2026
0c343c4
fixed linux threads and process name issues, removed unwated logs
Anof-cyber Jan 4, 2026
38af6aa
updated logs for udp, added UDP attach
Anof-cyber Jan 4, 2026
b813dda
temp moved rules from kernel to userspace
Anof-cyber Jan 10, 2026
0935c92
fixed deatch issues
Anof-cyber Jan 10, 2026
6e3a07f
added udp assoicate, iprove tcp udp relay, fixed UDP error, iproved m…
Anof-cyber Jan 10, 2026
0ba6dda
fixed macos signing
Anof-cyber Jan 11, 2026
c6e121a
Merge branch 'dev' of https://github.com/InterceptSuite/ProxyBridge i…
Anof-cyber Jan 11, 2026
d8289c3
#49 - WIP - Improved logging size
Anof-cyber Jan 11, 2026
3953778
removed id
Anof-cyber Jan 11, 2026
32dfaee
#49 - Added Traffic log on/off option
Anof-cyber Jan 11, 2026
8b24541
#49 updated polling time, stop IPC with no logging
Anof-cyber Jan 17, 2026
5116ac4
added pub config, added version 4.0
Anof-cyber Jan 17, 2026
735e848
fixed ext
Anof-cyber Jan 17, 2026
af823ce
updated config path
Anof-cyber Jan 17, 2026
06ddcf2
upated workflow
Anof-cyber Jan 17, 2026
1b9cb0d
fixed build error for workflow
Anof-cyber Jan 17, 2026
810e4dc
updated windows build
Anof-cyber Jan 17, 2026
6afd282
updated workflow
Anof-cyber Jan 17, 2026
a20163c
#47 - added Windows Startup option
Anof-cyber Jan 17, 2026
536bce1
fixed ps1, updated logo
Anof-cyber Jan 18, 2026
976429a
added logging on off in Windows app
Anof-cyber Jan 18, 2026
b3bb93c
Fixed buffer and free use vuln
Anof-cyber Jan 19, 2026
aeddbed
Merge commit from fork
Anof-cyber Jan 19, 2026
47892a7
#55 fixed memory issues - added C# garbage, updated disable logging t…
Anof-cyber Jan 19, 2026
dee5d85
#55 updated logging and strings and log checker from C#
Anof-cyber Jan 19, 2026
a105cec
#55 added relay timeout and buffer
Anof-cyber Jan 19, 2026
23f028e
upgraded dotnet and avalonia version
Anof-cyber Jan 19, 2026
9ee2657
#55 updated CLI to improve memory usage
Anof-cyber Jan 20, 2026
bc373e2
updated tcp relay packet
Anof-cyber Jan 20, 2026
a548854
wip #55 fixed cpu issues
Anof-cyber Jan 21, 2026
e3c4868
#55 control CPU spikes #41 - improved speed and fixed latency issues
Anof-cyber Jan 21, 2026
c91c4da
improved speeds
Anof-cyber Jan 21, 2026
d271637
fixed memory clean up
Anof-cyber Jan 21, 2026
14248d2
fixed #47 windows startup uac for admin permission - fixed garbage is…
Anof-cyber Jan 22, 2026
caabe2f
refactor socket configuration and improve send logic for better perfo…
Anof-cyber Jan 22, 2026
6b61910
improved C code
Anof-cyber Jan 22, 2026
6fd0a7c
SAST Scan - Sonarqube fixed banned APis
Anof-cyber Jan 22, 2026
deecef5
SAST - Fixed memory leak
Anof-cyber Jan 22, 2026
82f4877
Fixed #57 - config load and save error due to race condition
Anof-cyber Jan 22, 2026
ed7bc7d
Windows Version 4.0.0
Anof-cyber Jan 22, 2026
e00e721
updaed icon
Anof-cyber Jan 22, 2026
6dfed95
dropped Linux Dev
Anof-cyber Jan 23, 2026
2a8a0f6
version 3.1.0 Windows
Anof-cyber Jan 23, 2026
629a788
Fixed Window Size in mac proxy rule #52
Anof-cyber Jan 23, 2026
80c5bd5
#51 - Fixed system extension keeps memory after GUI closes
Anof-cyber Jan 23, 2026
e5ab512
updated logo and fixed init tunnel on main thread cause fail to start…
Anof-cyber Jan 23, 2026
121a0f8
updated contrib file
Anof-cyber Jan 23, 2026
cf71a4b
VERSION 3.1.0 updated readme
Anof-cyber Jan 23, 2026
c1298b5
Merge branch 'dev' of https://github.com/InterceptSuite/ProxyBridge i…
Anof-cyber Jan 23, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
6 changes: 4 additions & 2 deletions .github/FUNDING.yml
Original file line number Diff line number Diff line change
@@ -1,3 +1,5 @@
github: Anof-Cyber
custom:
github:
- InterceptSuite
- Anof-Cyber
custom:
- https://www.buymeacoffee.com/AnoF
39 changes: 26 additions & 13 deletions .github/workflows/build-mac.yml
Original file line number Diff line number Diff line change
Expand Up @@ -22,19 +22,32 @@ jobs:
with:
xcode-version: latest-stable

- name: Build ProxyBridge
- name: Create xcconfig files
run: |
cd MacOS/ProxyBridge
chmod +x build.sh
./build.sh
env:
SIGN_APP: ""
SIGN_PKG: ""
NOTARIZE: ""
cp proxybridge-app.xcconfig Signing-Config-app.xcconfig
cp proxybridge-ext.xcconfig Signing-Config-ext.xcconfig
sed -i '' 's/DEVELOPMENT_TEAM = L.*/DEVELOPMENT_TEAM = /' Signing-Config-app.xcconfig
sed -i '' 's/DEVELOPMENT_TEAM = L.*/DEVELOPMENT_TEAM = /' Signing-Config-ext.xcconfig

- name: Upload PKG artifact
uses: actions/upload-artifact@v4
with:
name: ProxyBridge-macOS
path: MacOS/ProxyBridge/output/ProxyBridge-Installer.pkg
retention-days: 30
- name: Build Universal Binary
run: |
cd MacOS/ProxyBridge
xcodebuild \
-project ProxyBridge.xcodeproj \
-scheme ProxyBridge \
-configuration Release \
-derivedDataPath build/DerivedData \
ARCHS="arm64 x86_64" \
ONLY_ACTIVE_ARCH=NO \
CODE_SIGN_IDENTITY="-" \
CODE_SIGNING_REQUIRED=NO \
CODE_SIGNING_ALLOWED=NO \
clean build

- name: Verify Build
run: |
cd MacOS/ProxyBridge
ls -la build/DerivedData/Build/Products/Release/
file build/DerivedData/Build/Products/Release/ProxyBridge.app/Contents/MacOS/ProxyBridge
lipo -archs build/DerivedData/Build/Products/Release/ProxyBridge.app/Contents/MacOS/ProxyBridge
Original file line number Diff line number Diff line change
@@ -1,10 +1,10 @@
name: Build ProxyBridge
name: Build Windows

on:
push:
branches: [ main ]
branches: [ main, dev ]
pull_request:
branches: [ main ]
branches: [ main, dev ]
workflow_dispatch:

jobs:
Expand All @@ -18,7 +18,7 @@ jobs:
- name: Setup .NET
uses: actions/setup-dotnet@v4
with:
dotnet-version: '9.0.x'
dotnet-version: '10.0.x'

- name: Setup MSYS2 (for GCC)
uses: msys2/setup-msys2@v2
Expand All @@ -38,6 +38,16 @@ jobs:
choco install nsis -y
shell: pwsh

- name: Install NSIS EnVar plugin
run: |
$nsisPluginDir = "C:\Program Files (x86)\NSIS\Plugins\x86-unicode"
$url = "https://nsis.sourceforge.io/mediawiki/images/7/7f/EnVar_plugin.zip"
Invoke-WebRequest -Uri $url -OutFile "EnVar.zip"
Expand-Archive -Path "EnVar.zip" -DestinationPath "EnVar"
Copy-Item "EnVar\Plugins\x86-unicode\EnVar.dll" -Destination $nsisPluginDir -Force
Write-Host "EnVar plugin installed successfully"
shell: pwsh

- name: Download WinDivert
run: |
$url = "https://github.com/basil00/Divert/releases/download/v2.2.2/WinDivert-2.2.2-A.zip"
Expand All @@ -57,7 +67,9 @@ jobs:
shell: pwsh

- name: Build project
run: .\Windows\compile.ps1 -NoSign -Compiler gcc
run: |
cd Windows
.\compile.ps1 -NoSign -Compiler gcc
shell: pwsh

- name: Upload artifacts
Expand Down
53 changes: 53 additions & 0 deletions .github/workflows/release-windows.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,53 @@
name: Release ProxyBridge Windows

on:
release:
types: [created]

jobs:
build-and-release:
runs-on: self-hosted

steps:
- name: Checkout code
uses: actions/checkout@v4

- name: Setup .NET
uses: actions/setup-dotnet@v4
with:
dotnet-version: '9.0.x'

- name: Verify WinDivert installation
run: |
if (Test-Path "C:\WinDivert-2.2.2-A") {
Write-Host "WinDivert found at C:\WinDivert-2.2.2-A"
} else {
Write-Error "WinDivert not found. Please install WinDivert 2.2.2-A at C:\WinDivert-2.2.2-A"
exit 1
}
shell: pwsh

- name: Build and sign project
run: .\Windows\compile.ps1
shell: pwsh

- name: List built files
run: |
Write-Host "`nBuild artifacts:"
Get-ChildItem Windows/output -Recurse | ForEach-Object {
$size = [math]::Round($_.Length/1MB, 2)
Write-Host " $($_.Name) - $size MB"
}
shell: pwsh

- name: Upload installer to release
uses: softprops/action-gh-release@v1
with:
files: Windows/output/ProxyBridge-Setup-*.exe

- name: Upload build artifacts
uses: actions/upload-artifact@v4
with:
name: ProxyBridge-Release-${{ github.event.release.tag_name }}
path: Windows/output/
retention-days: 90
Comment on lines +9 to +53

Check warning

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Copilot Autofix

AI 2 months ago

To fix the problem, explicitly set a permissions: block so the GITHUB_TOKEN has only the scopes this workflow needs. The steps are: (1) add a top‑level permissions: block (or a job‑level one) and (2) restrict it to the least privileges required. In this workflow, actions/checkout and the build steps require read access to repository contents, and softprops/action-gh-release needs to write to the release assets; no other special scopes are evident.

The single best minimal change without altering functionality is to define permissions at the workflow root, applying to all jobs. Add, near the top of .github/workflows/release-windows.yml, a block:

permissions:
  contents: write

This ensures the job can upload assets to the release while avoiding overly broad default permissions. Concretely, insert this block after the on: section (after line 5 and before jobs: at line 7). No additional methods, imports, or definitions are needed because this is purely a workflow‑configuration change.

Suggested changeset 1
.github/workflows/release-windows.yml

Autofix patch

Autofix patch
Run the following command in your local git repository to apply this patch
cat << 'EOF' | git apply
diff --git a/.github/workflows/release-windows.yml b/.github/workflows/release-windows.yml
--- a/.github/workflows/release-windows.yml
+++ b/.github/workflows/release-windows.yml
@@ -4,6 +4,9 @@
   release:
     types: [created]
 
+permissions:
+  contents: write
+
 jobs:
   build-and-release:
     runs-on: self-hosted
EOF
@@ -4,6 +4,9 @@
release:
types: [created]

permissions:
contents: write

jobs:
build-and-release:
runs-on: self-hosted
Copilot is powered by AI and may make mistakes. Always verify output.
Unable to commit as this autofix suggestion is now outdated
15 changes: 14 additions & 1 deletion .gitignore
Original file line number Diff line number Diff line change
Expand Up @@ -20,6 +20,12 @@ Windows/output/ProxyBridge_CLI.pdb
MacOS/ProxyBridge/.env
MacOS/ProxyBridge/output/
MacOS/ProxyBridge/build/
MacOS/ProxyBridge/provision/**

# Signing configuration files (sensitive)
MacOS/ProxyBridge/Signing-App.xcconfig
MacOS/ProxyBridge/Signing-Extension.xcconfig
MacOS/ProxyBridge/Signing-Config.xcconfig

# Xcode
xcuserdata/
Expand Down Expand Up @@ -81,4 +87,11 @@ Temporary Items
MacOS/ProxyBridge/build/
MacOS/ProxyBridge/output/

Linux/**
# Linux/**
MacOS/ProxyBridge/Signing-Config.xcconfig
MacOS/ProxyBridge/Signing-Config-app.xcconfig
MacOS/ProxyBridge/Signing-Config-ext.xcconfig
Linux/output/**
Linux/build/**
MacOS/ProxyBridge/config/Signing-Config-ext.xcconfig
MacOS/ProxyBridge/config/Signing-Config-app.xcconfig
131 changes: 131 additions & 0 deletions CODE_OF_CONDUCT.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,131 @@
# Code of Conduct

## Our Pledge

We as members, contributors, and leaders pledge to make participation in our community a harassment-free experience for everyone, regardless of age, body size, visible or invisible disability, ethnicity, sex characteristics, gender identity and expression, level of experience, education, socio-economic status, nationality, personal appearance, race, religion, or sexual identity and orientation.

We pledge to act and interact in ways that contribute to an open, welcoming, diverse, inclusive, and healthy community.

## Our Standards

Examples of behavior that contributes to a positive environment for our community include:

* **Being respectful and inclusive** of differing opinions, viewpoints, and experiences
* **Giving and gracefully accepting constructive feedback**
* **Accepting responsibility** and apologizing to those affected by our mistakes, and learning from the experience
* **Focusing on what is best** not just for us as individuals, but for the overall community
* **Showing empathy** towards other community members
* **Using welcoming and inclusive language**
* **Being patient** with new contributors and questions

Examples of unacceptable behavior include:

* The use of sexualized language or imagery, and sexual attention or advances of any kind
* Trolling, insulting or derogatory comments, and personal or political attacks
* Public or private harassment
* Publishing others' private information, such as a physical or email address, without their explicit permission
* Spam, promotional content, or excessive self-promotion
* Disruptive behavior that interferes with constructive discussion
* Other conduct which could reasonably be considered inappropriate in a professional setting

## Enforcement Responsibilities

Project maintainers are responsible for clarifying and enforcing our standards of acceptable behavior and will take appropriate and fair corrective action in response to any behavior that they deem inappropriate, threatening, offensive, or harmful.

Project maintainers have the right and responsibility to remove, edit, or reject comments, commits, code, wiki edits, issues, and other contributions that are not aligned to this Code of Conduct, and will communicate reasons for moderation decisions when appropriate.

## Scope

This Code of Conduct applies within all community spaces, including:

- GitHub repository (issues, pull requests, discussions)
- Project communication channels
- Official project social media accounts
- Project events and meetups

This Code of Conduct also applies when an individual is officially representing the community in public spaces. Examples of representing our community include using an official email address, posting via an official social media account, or acting as an appointed representative at an online or offline event.

## Reporting Violations

Instances of abusive, harassing, or otherwise unacceptable behavior may be reported to the project team at:

- **GitHub Issues** (for public, non-sensitive violations)
- **Email:** conduct@interceptsuite.com (for private reports)
- **GitHub Security Advisories** (for security-related concerns)

All complaints will be reviewed and investigated promptly and fairly.

All project maintainers are obligated to respect the privacy and security of the reporter of any incident.

## Enforcement Guidelines

Project maintainers will follow these Community Impact Guidelines in determining the consequences for any action they deem in violation of this Code of Conduct:

### 1. Correction

**Community Impact:** Use of inappropriate language or other behavior deemed unprofessional or unwelcome in the community.

**Consequence:** A private, written warning from project maintainers, providing clarity around the nature of the violation and an explanation of why the behavior was inappropriate. A public apology may be requested.

### 2. Warning

**Community Impact:** A violation through a single incident or series of actions.

**Consequence:** A warning with consequences for continued behavior. No interaction with the people involved, including unsolicited interaction with those enforcing the Code of Conduct, for a specified period of time. This includes avoiding interactions in community spaces as well as external channels like social media. Violating these terms may lead to a temporary or permanent ban.

### 3. Temporary Ban

**Community Impact:** A serious violation of community standards, including sustained inappropriate behavior.

**Consequence:** A temporary ban from any sort of interaction or public communication with the community for a specified period of time. No public or private interaction with the people involved, including unsolicited interaction with those enforcing the Code of Conduct, is allowed during this period. Violating these terms may lead to a permanent ban.

### 4. Permanent Ban

**Community Impact:** Demonstrating a pattern of violation of community standards, including sustained inappropriate behavior, harassment of an individual, or aggression toward or disparagement of classes of individuals.

**Consequence:** A permanent ban from any sort of public interaction within the community.

## Technical Conduct

In addition to general community standards, we expect technical contributions to adhere to:

### Code Quality
- Follow the coding standards outlined in [CONTRIBUTING.md](CONTRIBUTING.md)
- Write clear, maintainable code with appropriate comments
- Test your changes thoroughly before submitting

### Security
- Report security vulnerabilities privately (see [SECURITY.md](SECURITY.md))
- Do not publicly disclose security issues before they are addressed
- Do not include malicious code or backdoors

### Intellectual Property
- Respect software licenses and copyright
- Do not submit copyrighted code without proper attribution
- Ensure you have the right to contribute the code you submit

### Pull Requests and Issues
- Create GitHub issues before submitting PRs for new features or bug fixes
- Provide clear descriptions and context
- Be responsive to feedback and questions
- Respect maintainers' decisions on feature inclusion

## Attribution

This Code of Conduct is adapted from the [Contributor Covenant](https://www.contributor-covenant.org), version 2.1, available at [https://www.contributor-covenant.org/version/2/1/code_of_conduct.html](https://www.contributor-covenant.org/version/2/1/code_of_conduct.html).

Community Impact Guidelines were inspired by [Mozilla's code of conduct enforcement ladder](https://github.com/mozilla/diversity).

For answers to common questions about this code of conduct, see the FAQ at [https://www.contributor-covenant.org/faq](https://www.contributor-covenant.org/faq).

## Contact

For questions about this Code of Conduct, please:
- Open a discussion in [GitHub Discussions](https://github.com/InterceptSuite/ProxyBridge/discussions)
- Contact the project maintainers via [GitHub Issues](https://github.com/InterceptSuite/ProxyBridge/issues)

---

**Last Updated:** January 2026

Thank you for helping make ProxyBridge a welcoming and inclusive community! 🤝
Loading